pravailâ„¢ nsi enterprise-wide controller - arbor networks

2
Arbor Data Sheet As business grows, security needs change—additional users need support, different applications are added to the network and compliance requirements adjust. And advanced threats don’t take a vacation while the enterprise addresses these needs. The PravailNetwork Security Intelligence (Pravail NSI) product line includes an Enterprise-Wide Controller as a future-proof solution for businesses to gain awareness of the activities occurring in the network and the security intelligence to make action- able decisions to address those events. Improved Security for Advanced Threats Along with improved scalability, manageability and performance, the Pravail NSI Enterprise-Wide Controller features the full functionality of the standard Pravail NSI Controller, including the ability to: • Manage, aggregate and archive IP flow data from disparate locations, providing enterprise-wide awareness of activities occurring on the network. • Identify unmanaged mobile devices connecting to the network and using corporate resources. • Leverage Arbor’s Active Threat Feed (ATF) service to detect and address advanced threats including botnets, malware and other attacks. • Serve as the management interface and archive for multiple Pravail NSI Collectors, providing both real-time and historical visibility into network events. • Help demonstrate compliance with regulatory standards including PCI-DSS, Sarbanes-Oxley and Gramm-Leach-Bliley (GLBA).” Flexible Deployment and Detailed Forensics The Pravail NSI product line is designed to provide organizations with a full view of activities occurring in, on and around the network—from unmanaged mobile devices, to botnet communication or misuse of corporate resources. But every enterprise has different needs. The Enterprise-Wide Controller offers a flexible deployment model that enables users to easily deploy the right-size solution for every organization. The Pravail NSI Enterprise-Wide Controller includes 1.2 TB of flow storage to provide users with expanded forensic analysis. Users can add the Deep History Module for unlimited external storage. The Pravail NSI Enterprise-Wide Controller can be used as a stand-alone appliance for gathering IP flow data and analyzing it against attack fingerprints generated through Arbor’s ATF service. This offers an ideal solution for organizations looking to gain awareness of network activity in a centralized data center environment. Scalable security intelligence for the entire network Pravail NSI Enterprise-Wide Controller Key Features Scalability Scale network security intelligence for the largest networks from a single console. Deep Forensics Expand security intelligence to include data storage that empowers deep forensics of every network activity. Centralized Control Manage the security and visibility of large enterprise networks from a single Pravail NSI Controller. Optional Deep History Module Grow network security intelligence to maintain every flow record with the optional external storage.

Upload: others

Post on 10-Feb-2022

2 views

Category:

Documents


0 download

TRANSCRIPT

Arbor Data Sheet

As business grows, security needs change—additional users need support, differentapplications are added to the network and compliance requirements adjust. Andadvanced threats don’t take a vacation while the enterprise addresses these needs.The Pravail™ Network Security Intelligence (Pravail NSI) product line includes anEnterprise-Wide Controller as a future-proof solution for businesses to gain awarenessof the activities occurring in the network and the security intelligence to make action-able decisions to address those events.

Improved Security for Advanced Threats

Along with improved scalability, manageability and performance, the Pravail NSIEnterprise-Wide Controller features the full functionality of the standard Pravail NSIController, including the ability to:

• Manage, aggregate and archive IP flow data from disparate locations, providingenterprise-wide awareness of activities occurring on the network.

• Identify unmanaged mobile devices connecting to the network and usingcorporate resources.

• Leverage Arbor’s Active Threat Feed (ATF) service to detect and addressadvanced threats including botnets, malware and other attacks.

• Serve as the management interface and archive for multiple Pravail NSICollectors, providing both real-time and historical visibility into network events.

• Help demonstrate compliance with regulatory standards including PCI-DSS,Sarbanes-Oxley and Gramm-Leach-Bliley (GLBA).”

Flexible Deployment and Detailed Forensics

The Pravail NSI product line is designed to provide organizations with a full view ofactivities occurring in, on and around the network—from unmanaged mobile devices,to botnet communication or misuse of corporate resources. But every enterprise hasdifferent needs. The Enterprise-Wide Controller offers a flexible deployment model thatenables users to easily deploy the right-size solution for every organization.

The Pravail NSI Enterprise-Wide Controller includes 1.2 TB of flow storage to provideusers with expanded forensic analysis. Users can add the Deep History Module forunlimited external storage. The Pravail NSI Enterprise-Wide Controller can be usedas a stand-alone appliance for gathering IP flow data and analyzing it against attackfingerprints generated through Arbor’s ATF service. This offers an ideal solution fororganizations looking to gain awareness of network activity in a centralized datacenter environment.

Scalable security intelligence for the entire network

Pravail™ NSIEnterprise-Wide Controller

Key FeaturesScalabilityScale network security intelligencefor the largest networks from asingle console.

Deep ForensicsExpand security intelligence to includedata storage that empowers deepforensics of every network activity.

Centralized ControlManage the security and visibilityof large enterprise networks froma single Pravail NSI Controller.

Optional Deep History ModuleGrow network security intelligenceto maintain every flow record withthe optional external storage.

Pravail NSI Enterprise-Wide Controller Specifications

Corporate Headquarters

6 Omni WayChelmsford, Massachusetts 01824

Toll Free USA +1 866 212 7267T +1 978 703 6600F +1 978 250 1905

Europe

T +44 207 127 8147

Asia Pacific

T +65 6299 0695

www.arbornetworks.com

©2012 Arbor Networks, Inc. All rightsreserved. Arbor Networks, the Arbor Networkslogo, Peakflow, ArbOS, How Networks Grow,Pravail, Arbor Optima, Cloud Signaling,ATLAS and Arbor Networks. Smart. Available.Secure. are all trademarks of Arbor Networks,Inc. All other brands may be the trademarksof their respective owners.

DS/PNSIEWC/EN/0912

Features 5220 5230

Physical Dimensions Chassis: 2U rack heightHeight: 3.45 inches (8.67 cm)Width: 17.4 inches (43.53 cm)Depth: 24 inches (61 cm)Weight: 41 lbs. (18.5 kg)

Chassis: 2U rack heightHeight: 3.45 inches (8.67 cm)Width: 17.4 inches (43.53 cm)Depth: 24 inches (61 cm)Weight: 41 lbs. (18.5 kg)

Processor Dual Intel SixCore XeonCPU 2.40 GHz

Dual Intel SixCore XeonCPU 2.40 GHz

Hard Drives 6 x 120GB SSD drivesin RAID 5 (n+1)

6 x 120GB SSD drivesin RAID 5 (n+1)

Memory 18 GB 18 GB

Flows Per Second (Direct) 25,000 80,000

Flows Per Second(Direct + Collectors)

~250,000 ~250,000

Flow Storage 1.2 TB 1.2 TB

Sources 500 500

Max Collectors 50 50

Optional Deep HistoryModule (DHM)

Yes Yes

Monitoring Interface Options 4 x 10/100/1000 Copper4 x GE SX/LX2 x 10GE SR/LR

4 x 10/100/1000 Copper4 x GE SX/LX2 x 10GE SR/LR

Management Port Interfaces 2 x 10/100/1000 Copper 2 x 10/100/1000 Copper

PSU Dual AC or DC Power Dual AC or DC Power

The Pravail NSI Controllers also work as aggregators of IP flow data from the PravailNSI Collectors. The Enterprise-Wide Controllers extend the scope of Pravail NSIdeployments by supporting twice as many Collectors as the standard Controllers. Thecentralized control means organizations can manage the entire Pravail NSI installationfrom a single device, reducing administrative headaches. And support for the PravailNSI Application Intelligence Collector means network awareness about the users andapplications using corporate resources.

Industry-Leading Awareness and Security

The Pravail product family from Arbor Networks® gives enterprises the tools theyneed to tackle advanced threats head-on, helping organizations to maintain availability,comply with industry regulations and protect data and/or assets from being breached.With the Pravail solution, businesses get an enterprise-wide view of all network activi-ties and expert-level blocking, all backed by world-class security research.

The Pravail NSI product line leverages security research and attack profiles createdby the Arbor Security and Engineering Response Team (ASERT). The team pulls datafrom the ATLAS® Active Threat Level Analysis System, a network of devices continuallymonitoring Internet traffic for attacks, and uses this as the basis for updating its ActiveThreat Feed service. This service is what keeps the Pravail NSI system up-to-dateagainst the latest advanced threats.